DevSecOps Reference number: 2361

  • Online since: 06-07-2022
  • Sector: Railway
  • Start: 25-07-2022 | End: 31-07-2023
  • Category: IT

Job description

You will work in in the DEVSECOPS team which focuses on the automation of the software delivery chain with security embedded

What you'll do

  • Prepare the procedures and automation for deployment of software (own development, operating systems, utility software etc.) including the necessary tools to monitor the install base.
  • Prepare the procedures and automation for deployment of hardware (servers, workstation, network devices) including the necessary tools to monitor the install base.
  • Execute the first installation / update in collaboration with the SYS ADMIN team. Afterwards the SYS ADMIN team is responsible for the roll-out towards the other signaling-boxes. DEVSECOPS is responsible to support the SYS ADMIN during the rollout in case of issues and also to collect the return of experience during the roll out so that we can constantly improve the automation and the procedures.
  • Testing, documenting and implementation of new technologies and concepts: improving DEVSECOPS chain
  • Second level support for the EBP software and IT equipment in the signal zones
  • Regular car trips in Belgium
  • Occasional mounting/assembly work of IT equipment in computer rooms and control rooms
  • As security engineer you will take care of:
    • Determine threats and risks in software and network architectures
    • Analyse and make proposals to improve the security exposure of the existing infrastructure
    • Execute security code review
    • Evaluate vulnerability reports – propose mitigations and follow them up to have them implemented after approval
    • Assist / execute penetration testing

Profile

  • Can work in a structured way and precisely
  • Understand that the writing of documentation for people outside the team is a no brainer
  • Understand that keeping documentation up to date is a no brainer
  • Can demonstrate to work in a team in a constructive and efficient way
  • Is a good communicator
  • Understand when assistance of a colleague is needed and when not
  • Is able to work under stress
  • Is customer oriented, acts discretely and loyally to Siemens, since there is direct contact with the end customer
  • Willing to work in IT operations and to support the different team during go-live and hyper care periods (typically on site of the customer and outside the normal business hours (weekends - night)

Required skills

  • Very good knowledge of Linux operating systems (CentOS – Redhat) including scripting (bash)
  • Must speak / understand Dutch and French
  • Can prove security certification either high level for all the different security domains and/or specific to penetration and/or specific to software development (examples: CISSP – OSCP – CSSLP)
  • Experience with working in a production environment
  • Basic knowledge of Javascript and python
  • Basic knowledge of network administration: router – switch – VPN - firewall
  • Knowledge of the following domains is an asset:
    • Puppet (open source version)
    • Nagios
    • Elastic Stack (amongst others Kibana)
    • Database technology: mysql / postgress
    • Atlassian suite (Jira / Confluence / Git)
    • VM ware (VCenter)
    • GIT
Apply now
Mucella Pala Recruiter
02 629 77 74
Interested? Send us your resumé

To apply for this job, please complete the form below and join your resume. This instantly places your information into our database. Once we have received your information, we will be in touch by e-mail or phone. If you have not heard from us after 3 working days, please call us!

Thank you for your interest in working with Harvey Nash and we look forward to assisting you in your job search!